Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 16:59:01.022 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33744 10 6452 1 2025-11-20 17:00:01.380 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-11-20 17:00:23.960 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.713 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.790 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:00:23.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:01:01.779 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-20 16:57:03.649 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:02:02.184 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6452 1 2025-11-20 17:03:02.547 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47122 10 6452 1 2025-11-20 17:04:02.948 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-11-20 17:00:03.649 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:05:03.324 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45364 10 6452 1 2025-11-20 17:05:24.125 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:05:23.948 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:05:24.121 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:05:24.125 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:05:24.203 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:06:03.729 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-11-20 17:07:04.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52036 10 6452 1 2025-11-20 17:08:04.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-20 17:04:03.652 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:09:04.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6452 1 2025-11-20 17:10:05.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42830 10 6452 1 2025-11-20 17:10:24.214 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:10:24.123 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:10:24.171 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:10:24.132 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:10:24.198 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:11:05.769 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-11-20 17:07:03.649 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:12:06.199 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-11-20 17:13:06.558 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6452 1 2025-11-20 17:14:06.933 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 10 6452 1 2025-11-20 17:15:07.306 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:54092 10 6452 1 2025-11-20 17:15:24.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:15:24.362 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:15:24.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:15:24.364 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:15:24.275 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:11:03.653 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:16:08.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36022 10 6452 1 2025-11-20 17:17:08.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34146 10 6452 1 2025-11-20 17:18:08.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-11-20 17:14:03.650 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:19:09.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57526 10 6452 1 2025-11-20 17:20:24.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:20:09.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6452 1 2025-11-20 17:20:24.331 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:20:24.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:20:24.417 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:20:24.415 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:21:10.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58130 10 6452 1 2025-11-20 17:22:10.584 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-11-20 17:18:03.653 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:23:10.939 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 10 6452 1 2025-11-20 17:24:11.356 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37668 10 6452 1 2025-11-20 17:25:24.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:25:24.110 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:25:11.807 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-11-20 17:25:24.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:25:24.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:25:24.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:21:03.654 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:26:12.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48852 10 6452 1 2025-11-20 17:27:12.620 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37448 10 6452 1 2025-11-20 17:28:13.026 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52758 10 6452 1 2025-11-20 17:29:13.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-11-20 17:25:03.660 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:30:24.672 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:30:13.792 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53106 10 6452 1 2025-11-20 17:30:24.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:30:24.559 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:30:24.589 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:30:24.414 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:31:14.193 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:33702 10 6452 1 2025-11-20 17:32:14.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-11-20 17:28:03.658 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:33:15.224 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6452 1 2025-11-20 17:34:15.624 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36950 10 6452 1 2025-11-20 17:35:24.793 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:35:24.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:35:24.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:35:24.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:35:24.680 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:35:16.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-11-20 17:36:16.439 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60284 10 6452 1 2025-11-20 17:32:03.662 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:37:16.840 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 10 6452 1 2025-11-20 17:38:17.225 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-11-20 17:39:17.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53434 10 6452 1 2025-11-20 17:35:03.659 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:40:24.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:40:24.604 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:40:24.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:40:24.852 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:40:24.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:40:18.003 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50106 10 6452 1 2025-11-20 17:41:18.404 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36586 10 6452 1 2025-11-20 17:42:18.801 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-11-20 17:43:19.192 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6452 1 2025-11-20 17:39:03.664 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:44:19.593 00:00:18.350 TCP 1.101.0.1:3000 -> 23.104.0.1:42312 10 6452 1 2025-11-20 17:45:24.864 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:45:24.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:45:24.791 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:45:24.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:45:24.875 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:45:27.982 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 10 6452 1 2025-11-20 17:46:28.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42114 10 6452 1 2025-11-20 17:42:03.662 00:06:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:47:28.796 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-11-20 17:48:29.207 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49064 10 6452 1 2025-11-20 17:49:29.606 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-11-20 17:50:25.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:50:25.360 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:50:25.932 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:50:25.748 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:50:26.015 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:50:29.976 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56952 10 6452 1 2025-11-20 17:46:03.666 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:51:30.383 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-11-20 17:52:30.783 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 10 6452 1 2025-11-20 17:53:31.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 10 6452 1 2025-11-20 17:49:03.665 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:54:31.592 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33144 10 6452 1 2025-11-20 17:55:25.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:55:25.198 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:55:24.898 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:55:25.052 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:55:25.200 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:55:32.024 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-11-20 17:56:32.434 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 12 6556 1 2025-11-20 17:57:32.841 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6452 1 2025-11-20 17:53:03.667 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:58:33.242 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52680 10 6452 1 Summary: total flows: 137, total bytes: 416981, total packets: 1020, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-11-20 16:57:03 - 2025-11-20 17:59:03 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0012s Wall: 0.0018s flows/second: 74577.5 Runtime: 0.0019s